Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Server-Side PDF Encryption with pikepdf in a Next.js App (No qpdf Required)
Cover image for Server-Side PDF Encryption with pikepdf in a Next.js App (No qpdf Required)

Server-Side PDF Encryption with pikepdf in a Next.js App (No qpdf Required)

Comments
5 min read
I Built a Gmail Spoof Detector That Catches Unicode Homoglyph Phishing

I Built a Gmail Spoof Detector That Catches Unicode Homoglyph Phishing

1
Comments
2 min read
Ditch `authorized_keys` Sprawl: SSH User Certificates with OpenSSH CA (Practical Linux Guide)

Ditch `authorized_keys` Sprawl: SSH User Certificates with OpenSSH CA (Practical Linux Guide)

Comments
4 min read
Understanding OAuth2 Flow with a Complete Java Servlet Demo (Step-by-Step)
Cover image for Understanding OAuth2 Flow with a Complete Java Servlet Demo (Step-by-Step)

Understanding OAuth2 Flow with a Complete Java Servlet Demo (Step-by-Step)

Comments
7 min read
Python 3 & Security: A Deep-Dive Tutorial

Python 3 & Security: A Deep-Dive Tutorial

1
Comments
43 min read
We Built an AML Screening Tool That Replaces $100K Enterprise Contracts

We Built an AML Screening Tool That Replaces $100K Enterprise Contracts

Comments
5 min read
Your File Upload Endpoint Is Part of Your Attack Surface
Cover image for Your File Upload Endpoint Is Part of Your Attack Surface

Your File Upload Endpoint Is Part of Your Attack Surface

1
Comments
4 min read
The Terraform State Time Bomb: How to Defuse it Before Your Infra Collapses

The Terraform State Time Bomb: How to Defuse it Before Your Infra Collapses

Comments
10 min read
SPF, DKIM, and DMARC Explained — The 3 DNS Records Every Developer Needs

SPF, DKIM, and DMARC Explained — The 3 DNS Records Every Developer Needs

Comments
2 min read
How to Build a Zero-Knowledge, Burn-After-Reading Vault with the Web Crypto API

How to Build a Zero-Knowledge, Burn-After-Reading Vault with the Web Crypto API

Comments
3 min read
How I Built a Zero-Knowledge "Burn-After-Reading" Vault using the Web Crypto API
Cover image for How I Built a Zero-Knowledge "Burn-After-Reading" Vault using the Web Crypto API

How I Built a Zero-Knowledge "Burn-After-Reading" Vault using the Web Crypto API

Comments
3 min read
I Tested 50 AI App Prompts for Injection Attacks. 90% Scored CRITICAL.
Cover image for I Tested 50 AI App Prompts for Injection Attacks. 90% Scored CRITICAL.

I Tested 50 AI App Prompts for Injection Attacks. 90% Scored CRITICAL.

2
Comments
6 min read
Denial of Service in yauzl 3.2.0: One Zip File Crashes the Library Behind VS Code and Electron

Denial of Service in yauzl 3.2.0: One Zip File Crashes the Library Behind VS Code and Electron

Comments
5 min read
Local vs Cloud Data Processing: Security Comparison

Local vs Cloud Data Processing: Security Comparison

10
Comments 1
3 min read
How SSH Actually Works (Step-by-Step for Developers)
Cover image for How SSH Actually Works (Step-by-Step for Developers)

How SSH Actually Works (Step-by-Step for Developers)

Comments
2 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.